NVD脆弱性情報トップ
検索メニュー表示
ベンダー名
プロダクト・サービス名
タイトル
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
公表日降順
更新日降順
表示数

NVD(National Vulnerability Database)で管理されている脆弱性の一覧を検索することが出来ます。
JVN(Japan Vulnerability Note)より先に脆弱性情報が更新される事が多いため、JVNに未記載の脆弱性が更新されている場合があります。

JVN(Japan Vulnerability Note)に関連した脆弱性がある場合は詳細画面で情報を表示します。

CWEで検索する場合は、CWE概要を参照して、CWE番号を確認してください。

  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW

更新日:2026年4月25日4:08

No CVSS レベル
攻撃区分
ベンダー名 プロダクト名 タイトル CWE CVE 更新日 公表日 影響表示 Exploit
PoC
検索
312601 5.0 MEDIUM
mirabilis icq The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a denial of service via a URL with a long name parameter. NVD-CWE-Other
CVE-2000-0564 2008-09-11 04:05 2000-05-29 表示 GitHub Exploit DB Packet Storm
312602 5.0 MEDIUM
openbsd
washington_university
ftpd
wu-ftpd
FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called by set_proc_title), w… NVD-CWE-Other
CVE-2000-0574 2008-09-11 04:05 2000-07-7 表示 GitHub Exploit DB Packet Storm
312603 5.0 MEDIUM
oracle web_listener Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a malformed URL. NVD-CWE-Other
CVE-2000-0576 2008-09-11 04:05 2000-07-5 表示 GitHub Exploit DB Packet Storm
312604 3.7 LOW
sgi mipspro_compilers SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into these files as they are being c… NVD-CWE-Other
CVE-2000-0578 2008-09-11 04:05 2000-06-21 表示 GitHub Exploit DB Packet Storm
312605 3.7 LOW
sgi irix IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it is being edited. NVD-CWE-Other
CVE-2000-0579 2008-09-11 04:05 2000-06-21 表示 GitHub Exploit DB Packet Storm
312606 10.0 HIGH
dalnet ircd Buffer overflow in Dalnet IRC server 4.6.5 allows remote attackers to cause a denial of service or execute arbitrary commands via the SUMMON command. NVD-CWE-Other
CVE-2000-0586 2008-09-11 04:05 2000-06-29 表示 GitHub Exploit DB Packet Storm
312607 5.0 MEDIUM
novell bordermanager Novell BorderManager 3.0 and 3.5 allows remote attackers to bypass URL filtering by encoding characters in the requested URL. NVD-CWE-Other
CVE-2000-0591 2008-09-11 04:05 2000-07-5 表示 GitHub Exploit DB Packet Storm
312608 4.6 MEDIUM
freebsd freebsd libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in anot… NVD-CWE-Other
CVE-2000-0595 2008-09-11 04:05 2000-07-5 表示 GitHub Exploit DB Packet Storm
312609 5.0 MEDIUM
fortech proxy\+ Fortech Proxy+ allows remote attackers to bypass access restrictions for to the administration service by redirecting their connections through the telnet proxy. NVD-CWE-Other
CVE-2000-0598 2008-09-11 04:05 2000-06-26 表示 GitHub Exploit DB Packet Storm
312610 7.5 HIGH
imesh.com imesh Buffer overflow in iMesh 1.02 allows remote attackers to execute arbitrary commands via a long string to the iMesh port. NVD-CWE-Other
CVE-2000-0599 2008-09-11 04:05 2000-06-29 表示 GitHub Exploit DB Packet Storm
312611 2.1 LOW
blackboard courseinfo Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in cleartext in a registry key whose access control allows users to access the passwords. NVD-CWE-Other
CVE-2000-0605 2008-09-11 04:05 2000-07-10 表示 GitHub Exploit DB Packet Storm
312612 10.0 HIGH
suse suse_linux Tnef program in Linux systems allows remote attackers to overwrite arbitrary files via TNEF encoded compressed attachments which specify absolute path names for the decompressed output. NVD-CWE-Other
CVE-2000-0614 2008-09-11 04:05 2000-07-10 表示 GitHub Exploit DB Packet Storm
312613 4.6 MEDIUM
hp mpe_ix Vulnerability in HP TurboIMAGE DBUTIL allows local users to gain additional privileges via DBUTIL.PUB.SYS. NVD-CWE-Other
CVE-2000-0616 2008-09-11 04:05 2000-06-26 表示 GitHub Exploit DB Packet Storm
312614 4.6 MEDIUM
stanley_t._shebs xconq Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER environmental variable. NVD-CWE-Other
CVE-2000-0617 2008-09-11 04:05 2000-06-22 表示 GitHub Exploit DB Packet Storm
312615 4.6 MEDIUM
stanley_t._shebs xconq Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long DISPLAY environmental variable. NVD-CWE-Other
CVE-2000-0618 2008-09-11 04:05 2000-06-22 表示 GitHub Exploit DB Packet Storm
312616 10.0 HIGH
oreilly website_professional Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header. NVD-CWE-Other
CVE-2000-0623 2008-09-11 04:05 2000-07-17 表示 GitHub Exploit DB Packet Storm
312617 4.6 MEDIUM
netzero zeroport NetZero 3.0 and earlier uses weak encryption for storing a user's login information, which allows a local user to decrypt the password. NVD-CWE-Other
CVE-2000-0625 2008-09-11 04:05 2000-07-18 表示 GitHub Exploit DB Packet Storm
312618 5.0 MEDIUM
computer_software_manufaktur alibaba Buffer overflow in Alibaba web server allows remote attackers to cause a denial of service via a long GET request. NVD-CWE-Other
CVE-2000-0626 2008-09-11 04:05 2000-07-18 表示 GitHub Exploit DB Packet Storm
312619 7.5 HIGH
sun java_system_web_server The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling t… NVD-CWE-Other
CVE-2000-0629 2008-09-11 04:05 2000-07-12 表示 GitHub Exploit DB Packet Storm
312620 6.4 MEDIUM
texas_imperial_software wftpd WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via c… NVD-CWE-Other
CVE-2000-0645 2008-09-11 04:05 2000-07-21 表示 GitHub Exploit DB Packet Storm
312621 5.0 MEDIUM
texas_imperial_software wftpd WFTPD and WFTPD Pro 2.41 allows remote attackers to obtain the real pathname for a file by executing a STATUS (STAT) command while the file is being transferred. NVD-CWE-Other
CVE-2000-0646 2008-09-11 04:05 2000-07-21 表示 GitHub Exploit DB Packet Storm
312622 5.0 MEDIUM
texas_imperial_software wftpd WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server. NVD-CWE-Other
CVE-2000-0647 2008-09-11 04:05 2000-07-21 表示 GitHub Exploit DB Packet Storm
312623 5.0 MEDIUM
mozilla
netscape
mozilla
communicator
Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing a comment with an illegal field length of 1. NVD-CWE-Other
CVE-2000-0655 2008-09-11 04:05 2000-07-25 表示 GitHub Exploit DB Packet Storm
312624 5.0 MEDIUM
analogx proxy Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the FTP protocol. NVD-CWE-Other
CVE-2000-0656 2008-09-11 04:05 2000-07-25 表示 GitHub Exploit DB Packet Storm
312625 5.0 MEDIUM
analogx proxy Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the POP3 protocol. NVD-CWE-Other
CVE-2000-0658 2008-09-11 04:05 2000-07-25 表示 GitHub Exploit DB Packet Storm
312626 5.0 MEDIUM
analogx proxy Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long user ID in a SOCKS4 CONNECT request. NVD-CWE-Other
CVE-2000-0659 2008-09-11 04:05 2000-07-25 表示 GitHub Exploit DB Packet Storm
312627 3.6 LOW
conectiva linux Vulnerability in gpm in Caldera Linux allows local users to delete arbitrary files or conduct a denial of service. NVD-CWE-Other
CVE-2000-0667 2008-09-11 04:05 2000-07-27 表示 GitHub Exploit DB Packet Storm
312628 5.0 MEDIUM
netscape communicator Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to a URL using the "file", "http", "https", and "ftp"… NVD-CWE-Other
CVE-2000-0676 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312629 5.0 MEDIUM
pgp pgp PGP 5.5.x through 6.5.3 does not properly check if an Additional Decryption Key (ADK) is stored in the signed portion of a public certificate, which allows an attacker who can modify a victim's publi… NVD-CWE-Other
CVE-2000-0678 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312630 10.0 HIGH
bea weblogic_server BEA WebLogic 5.1.x does not properly restrict access to the JSPServlet, which could allow remote attackers to compile and execute Java JSP code by directly invoking the servlet on any source file. NVD-CWE-Other
CVE-2000-0684 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312631 10.0 HIGH
bea weblogic_server BEA WebLogic 5.1.x does not properly restrict access to the PageCompileServlet, which could allow remote attackers to compile and execute Java JHTML code by directly invoking the servlet on any sourc… NVD-CWE-Other
CVE-2000-0685 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312632 10.0 HIGH
cgi_script_center auction_weaver Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter. NVD-CWE-Other
CVE-2000-0690 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312633 7.2 HIGH
larry_wall perl suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" envi… NVD-CWE-Other
CVE-2000-0703 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312634 5.0 MEDIUM
luca_deri ntop ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack. NVD-CWE-Other
CVE-2000-0705 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312635 10.0 HIGH
luca_deri ntop Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands. NVD-CWE-Other
CVE-2000-0706 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312636 7.2 HIGH
university_of_massachusetts scheme umb-scheme 3.2-11 for Red Hat Linux is installed with world-writeable files. NVD-CWE-Other
CVE-2000-0714 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312637 2.1 LOW
kirk_bauer
conectiva
diskcheck
linux
DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local users to create or overwrite arbitrary files via a symlink attack on a temporary file. CWE-59
リンク解釈の問題
CVE-2000-0715 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312638 7.2 HIGH
zope zope Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request. NVD-CWE-Other
CVE-2000-0725 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312639 7.5 HIGH
netbsd
openbsd
redhat
netbsd
openbsd
linux
Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name. NVD-CWE-Other
CVE-2000-0750 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312640 7.5 HIGH
checkpoint firewall-1 Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests. NVD-CWE-Other
CVE-2000-0779 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312641 7.5 HIGH
xchat xchat IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser. NVD-CWE-Other
CVE-2000-0787 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312642 10.0 HIGH
suse suse_linux String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges. NVD-CWE-Other
CVE-2000-0800 2008-09-11 04:05 2000-10-20 表示 GitHub Exploit DB Packet Storm
312643 6.4 MEDIUM
sgi irix The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via the pmcd daemon. NVD-CWE-Other
CVE-2000-0283 2008-09-11 04:04 2000-04-12 表示 GitHub Exploit DB Packet Storm
312644 7.5 HIGH
university_of_washington imap Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands. NVD-CWE-Other
CVE-2000-0284 2008-09-11 04:04 2000-04-16 表示 GitHub Exploit DB Packet Storm
312645 7.2 HIGH
xfree86_project x11r6 Buffer overflow in XFree86 3.3.x allows local users to execute arbitrary commands via a long -xkbmap parameter. NVD-CWE-Other
CVE-2000-0285 2008-09-11 04:04 2000-04-16 表示 GitHub Exploit DB Packet Storm
312646 2.1 LOW
redhat linux X fontserver xfs allows local users to cause a denial of service via malformed input to the server. NVD-CWE-Other
CVE-2000-0286 2008-09-11 04:04 2000-04-16 表示 GitHub Exploit DB Packet Storm
312647 10.0 HIGH
cnc technology_bizdb The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the dbname parameter. NVD-CWE-Other
CVE-2000-0287 2008-09-11 04:04 2000-04-12 表示 GitHub Exploit DB Packet Storm
312648 5.0 MEDIUM
- - Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form variable. NVD-CWE-Other
CVE-2000-0288 2008-09-11 04:04 2000-04-12 表示 GitHub Exploit DB Packet Storm
312649 5.0 MEDIUM
debian
linux
redhat
debian_linux
linux_kernel
linux
IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established… NVD-CWE-Other
CVE-2000-0289 2008-09-11 04:04 2000-03-27 表示 GitHub Exploit DB Packet Storm
312650 4.6 MEDIUM
sun staroffice Buffer overflow in Star Office 5.1 allows attackers to cause a denial of service by embedding a long URL within a document. NVD-CWE-Other
CVE-2000-0291 2008-09-11 04:04 2000-04-16 表示 GitHub Exploit DB Packet Storm